Vulnerability Description
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b contains a buffer overflow in gf_vvc_read_pps_bs_internal function of media_tools/av_parsers.c, check needed for num_exp_tile_columns
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/gpac/gpac/commit/48760768611f6766bf9e7378bb7cc66cebd6e49d
- https://github.com/gpac/gpac/issues/2341
FAQ
What is CVE-2022-47090?
CVE-2022-47090 is a vulnerability with a CVSS score of 7.8 (HIGH). GPAC MP4box 2.1-DEV-rev574-g9d5bb184b contains a buffer overflow in gf_vvc_read_pps_bs_internal function of media_tools/av_parsers.c, check needed for num_exp_tile_columns
How severe is CVE-2022-47090?
CVE-2022-47090 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-47090?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.